Splunk Engineer

USD

Job Title : Splunk Engineer


Company Name: BAE Systems

Job Details:  Splunk Engineer | BAE Systems
8-10 minutes
About the job
BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.

SPLUNK ENGINEER – This is short term contract with a potential to either extend or convert to a perm

We are looking for a talented and enthusiastic individual with excellent technical and client-facing skills, to act a Splunk engineer who can design, deploy, support and configure Splunk in to a range of histing environments. They will also be responsible for working with clients to derive and implement the security use cases across a range of platforms and systems to be monitored. The role will range from designing and deploying new solutions, assessing existing deployments to make improvements and onboarding new data sources. This role is situated within our Government business, based in Canberra, with substantial time on client sites and will require a government security clearance at NV2 minimum, but candidates will be expected to undergo PV.

The company supports individuals career development and has a wide range of opportunities to develop into cloud implementation, solution architecture and broader security consulting, depending up the aspirations and skills of the successful candidate

Find out more about our award winning Cyber Security solutions: http://www.baesystems.com/en/cybersecurity/solutions/by-business-objective/detect-and-monitor-for-cyber-attacks

Responsibilities

Design and deploy Splunk enterprise, enterprise security, Splunk SOAR and UBA components across a range of hosting environments.
Integrate Splunk into identity management solution.
Integrate Splunk with CTI tools and case management solutions.
Design, implement and manage log collection and onboarding activities to SIEM
Oversee deployment / implementation activities ensuring that entry criteria are met, all planned activities are completed and that rollback plans are initiated where required.
Identify use cases, plan development, deployment, testing and release into production.
Produce, update and maintain corresponding playbooks for detection and automation content.
Develop, test and deploy updated and new content across the monitored estate in liaison with the client.
Maintain existing detection content to ensure it remains current and relevant to the monitored estate, and that False positives are kept to a minimum.
Assess the effectiveness of new / updated rules and analytics to feed into future development activities.
Review and approve all required documentation as part of a release or change including design, deployment, configuration and administration guides.
Integrate solutions with vulnerability and asset and configuration management and other tools to enrich efficacy of the solution.
The strategic focus of the role is to ensure that the detection and monitoring technology remains optimised, current and tailored to the changing threat landscape, client risk position and technology in use.
The role is a cyber technical specialist with deep knowledge of the Cyber Monitoring technologies and cyber threat tools, tactics, techniques and procedures.

Requirements

Technical

Strong knowledge of how Azure and AWS security functions work as security controls as well as detection tools to protect large cloud estates; Produce content and playbooks on Sentinel and Splunk to detect security breaches and recognise the importance of threat led Use Cases.
Knowledge of SIEM/SOAR tools (Splunk and Sentinel at a minimum) and other appropriate tooling e.g. SOAR, Threat Intelligence, traffic analysis tools etc. to identify signs of an intrusion, and advise where new/improved tooling could enhance the SOC operation
Experience deploying and configuring Splunk in a performant manner on cloud to support high data rates
Proven delivery and experience leading conducting onboarding activities onto a SIEM
Deep knowledge and experience of operational ICT service delivery management.
Working with a range of security tooling/technology
Strong understanding of security architecture, in particular networking
Detailed understanding of threat intelligence and threat actors, TTPs and operationalising threat intelligence.
Understand TCP/IP component layers to identify normal and abnormal traffic
Experience of Splunk (with ES) &/or Sentinel
Experience developing SIEM/SOAR content desirable

Non-technical

Client side consulting, including stakeholder engagement and the ability to communicate insights and concepts to others (including briefing skills and report writing)
Coaching mindset – help and mentor team
Security process development
Able to understand and adapt to different cultures and hierarchical structures.
Self-starter and capable of independent working
Team player and adept at working in multi-disciplinary and diverse teams
Communication
Ability to write concisely and clearly in simple language.
Ability to speak clearly and accurately in English.
Interpersonal
Ability to build and maintain relationships with the various stakeholders
Ability to talk competently and maintain high standards of behaviour with the client
Ability to work in a multi-cultural environment.
Ability to maintain confidentiality and deal with matters of national security.
Ability to maintain high standards and provide challenging feedback even when it will be perceived negatively.
It is imperative that the individual can complete their tasks with minimal direction.
Collaboration
Ability to work collaboratively
Self-awareness and understanding of your own strengths and weaknesses.
Adaptability

Good time and schedule management
Adaptability to react to rapid changes.
Motivation
Able to motivate groups and individuals all at various levels of knowledge and experience
Self-starter with the ability to maintain self-motivation
Able to manage and recognise signs of stress
Attitude
A Positive attitude, positive outlook and an active team leader/member
Utilising a common sense approach and maintaining a level head when faced with unusual requests
The individual needs to be able to maintain discretion and be highly trustworthy
Life at BAE Systems Digital Intelligence

We are embracing Hybrid Working. This means you and your colleagues may be working in different locations, such as from home, another BAE Systems office or client site, some or all of the time, and work might be going on at different times of the day.

By embracing technology, we can interact, collaborate and create together, even when we’re working remotely from one another. Hybrid Working allows for increased flexibility in when and where we work, helping us to balance our work and personal life more effectively, and enhance well-being.

Diversity and inclusion are integral to the success of BAE Systems Digital Intelligence. We are proud to have an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds – the best and brightest minds – can work together to achieve excellence and realise individual and organisational potential.

Division overview: Financial Services

At BAE Systems Digital Intelligence, we pride ourselves in being a leader in the cyber defence industry, and the financial sector is one of the biggest targets for cyber-attacks. Our Financial Services business unit is responsible for all of our clients in the financial sector and handle all areas of these relationships. The Financial Services Division helps banks, insurers and other major financial institutions to combat fraud, unauthorised trading and money laundering, and meets their regulatory compliance obligations.

As a member of the Financial Services business unit, you will be responsible for providing critical services to clients in the financial sector and ensure that we remain a leading name in cyber security. We all have a role to play in defending our clients, and this is yours. |

Country: Australia


 

About the role

Job posted

Job type

Salary

USD

Categories

Required skills

Company

Similar jobs

www.linkedin.com/jobs/view/4141595015/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=7L6oj%2FwDpUZCHbCX7HGODA%3D%3D&trackingId=atdWtQFPd6svb0N9OKfKNA%3D%3D&trk=flagship3_search_srp_jobswww.linkedin.com/jobs/view/4141595015/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=7L6oj%2FwDpUZCHbCX7HGODA%3D%3D&trackingId=atdWtQFPd6svb0N9OKfKNA%3D%3D&trk=flagship3_search_srp_jobsElectronics Engineer - Aviation | Royal Australian Air Force

Electronics Engineer – Aviation

Job Title : Electronics Engineer - Aviation Company Name: Royal Australian Air Force Job Details:  www.linkedin.com/jobs/view/4141595015/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=7L6oj%2FwDpUZCHbCX7HGODA%3D%3D&trackingId=atdWtQFPd6svb0N9OKfKNA%3D%3D&trk=flagship3_search_srp_jobswww.linkedin.com/jobs/view/4141595015/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=7L6oj%2FwDpUZCHbCX7HGODA%3D%3D&trackingId=atdWtQFPd6svb0N9OKfKNA%3D%3D&trk=flagship3_search_srp_jobsElectronics Engineer -...

USD

www.linkedin.com/jobs/view/4068019209/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=KJkZHZ99ga9ccmHrKS%2BK9w%3D%3D&trackingId=OzGTwL%2BKdrj0tSgWcem4mA%3D%3D&trk=flagship3_search_srp_jobswww.linkedin.com/jobs/view/4068019209/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=KJkZHZ99ga9ccmHrKS%2BK9w%3D%3D&trackingId=OzGTwL%2BKdrj0tSgWcem4mA%3D%3D&trk=flagship3_search_srp_jobsProject Manager | Ultra Maritime

Project Manager

Job Title : Project Manager Company Name: Ultra Maritime Job Details:  www.linkedin.com/jobs/view/4068019209/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=KJkZHZ99ga9ccmHrKS%2BK9w%3D%3D&trackingId=OzGTwL%2BKdrj0tSgWcem4mA%3D%3D&trk=flagship3_search_srp_jobswww.linkedin.com/jobs/view/4068019209/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=KJkZHZ99ga9ccmHrKS%2BK9w%3D%3D&trackingId=OzGTwL%2BKdrj0tSgWcem4mA%3D%3D&trk=flagship3_search_srp_jobsProject Manager | Ultra Maritime 6-7 minutes...

USD

Work Management Analyst | Boeing

Work Management Analyst

Job Title : Work Management Analyst Company Name: Boeing Job Details:  Work Management Analyst | Boeing 5-7 minutes...

USD

www.linkedin.com/jobs/view/4124863733/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=WlUggNcrg6g%2FL9mj5AkHqw%3D%3D&trackingId=m01SxFXX38M4XyyggdtfqQ%3D%3D&trk=flagship3_search_srp_jobsLogistical Engineer | L3Harris Technologies

Logistical Engineer

Job Title : Logistical Engineer Company Name: L3Harris Technologies Job Details:  www.linkedin.com/jobs/view/4124863733/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=WlUggNcrg6g%2FL9mj5AkHqw%3D%3D&trackingId=m01SxFXX38M4XyyggdtfqQ%3D%3D&trk=flagship3_search_srp_jobsLogistical Engineer | L3Harris Technologies 3-4 minutes...

USD

www.linkedin.com/jobs/view/4129672319/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=KJkZHZ99ga9ccmHrKS%2BK9w%3D%3D&trackingId=kE6SrBlXo2K%2FCwt4kjLDGQ%3D%3D&trk=flagship3_search_srp_jobsFuels Manager | KBR

Fuels Manager

Job Title : Fuels Manager Company Name: KBR, Inc. Job Details:  www.linkedin.com/jobs/view/4129672319/?eBP=NOT_ELIGIBLE_FOR_CHARGING&refId=KJkZHZ99ga9ccmHrKS%2BK9w%3D%3D&trackingId=kE6SrBlXo2K%2FCwt4kjLDGQ%3D%3D&trk=flagship3_search_srp_jobsFuels Manager | KBR, Inc. 7-8 minutes...

USD

Waterfront Project Support Officer | Defence Australia

Waterfront Project Support Officer

Job Title : Waterfront Project Support Officer Company Name: Defence Australia Job Details:  Waterfront Project Support Officer |...

USD